Vulnerabilities > Qualcomm > High

DATE CVE VULNERABILITY TITLE RISK
2023-05-02 CVE-2022-40505 Out-of-bounds Read vulnerability in Qualcomm products
Information disclosure due to buffer over-read in Modem while parsing DNS hostname.
network
low complexity
qualcomm CWE-125
7.5
2023-05-02 CVE-2022-40508 Reachable Assertion vulnerability in Qualcomm products
Transient DOS due to reachable assertion in Modem while processing config related to cross carrier scheduling, which is not supported.
network
low complexity
qualcomm CWE-617
7.5
2023-05-02 CVE-2023-21642 Unspecified vulnerability in Qualcomm products
Memory corruption in HAB Memory management due to broad system privileges via physical address.
local
low complexity
qualcomm
7.8
2023-05-02 CVE-2023-21665 Incorrect Type Conversion or Cast vulnerability in Qualcomm products
Memory corruption in Graphics while importing a file.
local
low complexity
qualcomm CWE-704
7.8
2023-05-02 CVE-2023-21666 Memory Leak vulnerability in Qualcomm products
Memory Corruption in Graphics while accessing a buffer allocated through the graphics pool.
local
low complexity
qualcomm CWE-401
7.8
2023-04-13 CVE-2022-33258 Out-of-bounds Read vulnerability in Qualcomm products
Information disclosure due to buffer over-read in modem while reading configuration parameters.
network
low complexity
qualcomm CWE-125
7.5
2023-04-13 CVE-2022-25726 Out-of-bounds Read vulnerability in Qualcomm products
Information disclosure in modem data due to array out of bound access while handling the incoming DNS response packet
network
low complexity
qualcomm CWE-125
7.5
2023-04-13 CVE-2022-25730 Out-of-bounds Read vulnerability in Qualcomm products
Information disclosure in modem due to improper check of IP type while processing DNS server query
network
low complexity
qualcomm CWE-125
7.5
2023-04-13 CVE-2022-25731 Out-of-bounds Read vulnerability in Qualcomm products
Information disclosure in modem due to buffer over-read while processing packets from DNS server
network
low complexity
qualcomm CWE-125
7.5
2023-04-13 CVE-2022-25737 Use of Uninitialized Resource vulnerability in Qualcomm products
Information disclosure in modem due to missing NULL check while reading packets received from local network
network
low complexity
qualcomm CWE-908
7.5